Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
Maryland Department of Information Technology

Maryland Department of Information Technology Vendor Cyber Rating & Cyber Score

maryland.gov

The Department of Information Technology provides vital technology solutions that allow the Executive Branch, State Agencies and Coordinating Offices to provide Marylanders with services that enable them to live and work more safely, efficiently and productively.


MDIT A.I CyberSecurity Scoring

MDIT
Company Information
Website:http://doit.maryland.gov
Employees number:199
Number of followers:14,016
NAICS:
Industry Type:Information Technology & Services
Homepage:maryland.gov
MDIT Risk Score (AI oriented)
Between 700 and 749
logo
MDITInformation Technology & Services
Updated:
02/04/2026
733/1000
Moderate
Ba
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
MDIT Global Score (TPRM)
xxxx
logo
MDITInformation Technology & Services
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

MDIT
MDITModerate
Current Score
733Ba (MODERATE)
01000
2 incidents
-26 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JULY 2026
736Before Incident
JUNE 2026
735Before Incident
MAY 2026
735Before Incident
APRIL 2026
734Before Incident
MARCH 2026
733Before Incident
FEBRUARY 2026
733Before Incident
JANUARY 2026
732Before Incident
DECEMBER 2025
731Before Incident
NOVEMBER 2025
731Before Incident
OCTOBER 2025
730Before Incident
SEPTEMBER 2025
755Before Incident
Cyber Attack
29 Sep 2025MDIT
Lorain County, Waxhaw and Maryland state government: Over 45K hit by ransomware attack against Ohio county

Union County Ransomware Attack

729After Incident
CRITICAL-26
LORTOWMAR1768395786
Union County, Ohio, Confirms Data Breach Affecting 45,587 Individuals in May Ransomware Attack Officials in Ohio’s Union County have disclosed that a May ransomware attack compromised sensitive data belonging to 45,587 individuals, including residents and county employees. The breach, which remains unclaimed by any known threat group, exposed a wide range of personal information, such as Social Security numbers, financial account details, driver’s license numbers, medical records, fingerprint data, and passport numbers. The county notified affected individuals via breach notification letters. The incident is part of a broader surge in cyberattacks targeting state and local governments this year. In June, the town of Waxhaw, North Carolina, confirmed a ransomware attack by the Qilin gang, which resulted in the theft of over 600 GB of data. Other recent victims include Lorain County, Ohio, and the Maryland state government, highlighting persistent vulnerabilities in public sector cybersecurity.
INCIDENT DETAILS -
TYPE
Ransomware
IMPACT
Data Compromised: 45,587 recordsIdentity Theft Risk: HighPayment Information Risk: High
DATA BREACH
Personally Identifiable InformationFinancial Account DetailsMedical InformationBiometric DataPassport NumbersNumber Of Records Exposed: 45,587Sensitivity Of Data: HighData Exfiltration: YesNamesSocial Security NumbersDriver's License NumbersFingerprint DataPassport Numbers
AUGUST 2025
755Before Incident
JUNE 2020
756Before Incident
Vulnerability
16 Jun 2020MDIT
Maryland Department of Information Technology (DoIT)

Maryland Launches Statewide Vulnerability Disclosure Program (VDP)

751After Incident
HIGH-5
MDD0932609102225
Maryland launched a Vulnerability Disclosure Program (VDP) to encourage ethical hackers to report security flaws in state systems before malicious actors exploit them. While the initiative itself is proactive, the article highlights systemic risks tied to unpatched vulnerabilities in government infrastructure. Historical context reveals legal ambiguities and hostile responses (e.g., Missouri’s 2021 case where a reporter was accused of 'hacking' for exposing a flaw), deterring responsible disclosure. Maryland’s prior month-long bug bounty uncovered 40+ vulnerabilities, suggesting persistent gaps in cybersecurity resilience. The expansion of the Maryland Information Sharing and Analysis Center (MD-ISAC)—mandating participation from agencies, schools, and critical infrastructure—underscores the urgency to mitigate threats leveraging AI and automation. The program’s 'safe harbor' clause protects good-faith researchers but implies prior exposure to unaddressed vulnerabilities that could have led to breaches, data leaks, or operational disruptions. The lack of a federal mandate for state-level VDPs (unlike CISA’s 2020 directive for federal agencies) leaves Maryland’s systems historically vulnerable to cyber attacks targeting public services, elections, or citizen data. The initiative’s aggressiveness hints at pre-existing high-risk vulnerabilities that, if exploited, could threaten government service continuity, financial systems, or public trust—aligning with impacts seen in attacks on critical infrastructure or regional economies.
INCIDENT DETAILS -
TYPE
Vulnerability Disclosure Program (VDP)Proactive Cybersecurity Initiative
MOTIVATION
Proactive Cybersecurity DefenseCollaboration with White-Hat HackersThreat Intelligence Sharing
IMPACT
Positive (Enhanced trust in state cybersecurity posture)Potential reduction in fear of legal reprisals for researchers)Safe harbor clause protects good-faith researchers from legal action

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for MDIT ?
?
What was MDIT's A.I Rankiteo Cyber Score in June 2026 ?
?
What was MDIT's A.I Rankiteo Cyber Score in May 2026 ?
?
What was MDIT's A.I Rankiteo Cyber Score in April 2026 ?
?
What was MDIT's A.I Rankiteo Cyber Score in March 2026 ?
?
What was MDIT's A.I Rankiteo Cyber Score in February 2026 ?
?
What was MDIT's A.I Rankiteo Cyber Score in January 2026 ?
?
What was MDIT's A.I Rankiteo Cyber Score in December 2025 ?
?
What was MDIT's A.I Rankiteo Cyber Score in November 2025 ?
?
What was MDIT's A.I Rankiteo Cyber Score in October 2025 ?
?
What was MDIT's A.I Rankiteo Cyber Score in September 2025 ?
?
What was MDIT's A.I Rankiteo Cyber Score in August 2025 ?
?
What is the average per-incident point impact on MDIT's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with MDIT ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view MDIT's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?